Linux Malware Delivered via Malicious RAR Filenames Evades Antivirus Detection (thehackernews.com)
from Amoxtli@thelemmy.club to cybersecurity@sh.itjust.works on 24 Aug 21:53
https://thelemmy.club/post/33488761

#cybersecurity

threaded - newest

grue@lemmy.world on 25 Aug 02:58 next collapse

Is there anything special about the “inside a RAR archive” part? Would other archive formats work just as well, or could the maliciously-named file be attached to an email directly?

SSUPII@sopuli.xyz on 25 Aug 05:38 collapse

I don’t see why the archive is important at all here, other than file naming limitations.

The weak point is from other automated scripts not sanitising the file list when such a file is present, not from the extraction of the archive.

I really am seeing a nothing burger here.

[deleted] on 25 Aug 05:41 collapse

.

AnarchistArtificer@slrpnk.net on 25 Aug 21:49 collapse

At least the backdoor is open-source /s